Privacy

Last updated August 2026

Pryzmis built to be private by default. The design work itself runs in your browser. If you create an account, a little data is stored so it can sync across your devices: your email, and any looks you choose to save (including a preview and any photo in them). This page explains what’s what, in plain language.

Your images and designs

Photos you upload and the backgrounds you create are rendered locally in your browserusing WebGL. While you’re designing, nothing is sent to us. When you save a look that includes an uploaded photo, that photo is stored privately in your account (alongside a small preview image) so you can reopen and keep editing the look. Only you can see your saved looks, and deleting a look removes its stored photo and preview.

Accounts & saved looks

Creating an account stores your email address so we can sign you in and sync your work. When you save a look, we store its gradient and effect settings, a small preview image, and any photo you added, all tied to your account. You can delete a saved look, or your whole account, at any time. Authentication and this data are handled by Supabase, our database and auth provider.

Product survey

Once, after you sign in, we ask three optional multiple-choice questions about what you do and how you found us. Answering is entirely voluntary, there is no free-text box, and skipping means we never ask again. We use the answers only in aggregate, to decide what to build next. They are stored with your account so we know not to ask twice, and they go nowhere else.

Shareable links

A shared link encodes your gradient and effect settings in the URL itself, so no data is stored on our side. Links to bundled example photos reference files hosted on this site; they never include your own images.

Cookies

Pryzm uses strictly necessary cookies — the session cookies that keep you signed in. Those are required for the site to work and are always on.

We also offer analytics and advertising cookies, and they only ever run if you accept them in the banner. Nothing that sets them loads before you choose. One helps us recognise a returning visit so we can tell how people find Pryzm; the other is the Meta pixel, which lets us measure our ads and does involve cross-site tracking by Meta. Decline and neither is set at all; we fall back to the anonymous measurement described below. Your choice is remembered in your browser’s local storage (not a cookie), and clearing your site data will make the banner ask again.

Analytics

We measure aggregate usage — page views, and basic events like an export or a saved look — using DataFast, and it follows the choice you make in the banner. Accept and it uses a cookie, so a returning visit can be linked to the original one. Decline and it runs in its cookieless mode: visits are counted against an identifier derived on its servers that changes about once a day, is never stored on your device, and can’t be used to recognise you elsewhere. Before you answer, it doesn’t run at all — so no events are recorded either.

If — and only if — you accept the banner, we also load the Meta pixel, which tells us which of our Facebook and Instagram ads led to a visit or a sign-up. It sets a cookie and reports your visit to Meta, who may combine it with your activity on their platforms and elsewhere. This is the one thing we load that tracks you across sites, and declining switches it off entirely. You can also opt out at Meta’s ad preferences.

Separately, Ahrefs Web Analytics gives us basic page-view counts. It is cookieless, collects no personal data, and doesn’t track you across other sites, so it runs regardless of your choice.

We also count visits from automated crawlers — search engines and AI bots that read our pages. That happens on our server, from the request itself, and involves no cookies, no scripts, and no data about you.

Subscriptions & payments

Payments are handled by our merchant of record, Polar, who processes your payment details. We never see your card information. When you subscribe to Pryzm Pro, Polar tells us your subscription status so we can unlock Pro on your account. You can manage or cancel your subscription through Polar at any time.

Newsletter

You can subscribe to occasional emails about new features and new looks in the gallery. We only send these if you ask us to, by entering your email in one of our subscribe forms or ticking the (unticked by default) box when you create an account. We never add you to the newsletter just because you signed up or subscribed to Pro.

We store your email address, the date you subscribed, and where you subscribed from, so we can show that you asked to hear from us. Every email has a one-click unsubscribe link, and you can unsubscribe at any time, or email us and we’ll remove you. Newsletter delivery is handled by Resend.

Account emails, like confirming your address or resetting your password, are separate. They aren’t marketing, and you receive them regardless of whether you subscribe to the newsletter.

Who processes your data

We keep the list short: Supabase (accounts and saved looks), Polar (payments and subscriptions), Resend (account emails and the newsletter), Vercel (hosting), Ahrefs (cookieless analytics), and DataFast (product analytics, cookie only with your consent), and Meta (ad measurement, only with your consent). We don’t sell your data.

Contact

Questions about privacy? Email support@pryzm.design.